---
title: 'Topic: severity:CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
canonical_url: https://portal.chinng-lab-srv.dev/topics/severity-cvss-3-1-av-n-ac-l-pr-l-ui-n-s-u-c-h-i-h-a-h.md
content_kind: topic
updated_at: '2026-08-02T07:21:57Z'
---

# Topic: severity:CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

> Stable topic monitoring page generated from normalized published metadata.

- Canonical: https://portal.chinng-lab-srv.dev/topics/severity-cvss-3-1-av-n-ac-l-pr-l-ui-n-s-u-c-h-i-h-a-h.md
- Last updated: 2026-08-02T07:21:57Z
- Search: https://portal.chinng-lab-srv.dev/api/search?q=severity%3ACVSS%3A3.1%2FAV%3AN%2FAC%3AL%2FPR%3AL%2FUI%3AN%2FS%3AU%2FC%3AH%2FI%3AH%2FA%3AH
- MCP: portal_search(q="severity:CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H")

## Related categories

- security/library
- security/os

## Related entities

- GitPython
- GitHub
- Chainguard
- ElectricVehicle
- PyPI
- Aviation Wire
- Tokyo Yakult Swallows
- User
- user
- INTERNAL_SERVICES
- HashTag
- Command and Conquer Generals

## Latest articles

- [GHSA-r9mr-m37c-5fr3: GitPython: Unsafe git option guard bypass via single-character kwarg value token smuggling enables arbitrary command execution](https://portal.chinng-lab-srv.dev/security/library/security-20260725-d05ab6.md): GitPython: Unsafe git option guard bypass via single-character kwarg value token smuggling enables arbitrary command execution
- [CVE-2026-67325: GitPython: Command Injection via git long-option prefix abbreviation bypass of CVE-2026-42215 blocklist](https://portal.chinng-lab-srv.dev/security/library/security-20260722-96cbaf.md): GitPython: Command Injection via git long-option prefix abbreviation bypass of CVE-2026-42215 blocklist
- [CVE-2026-47102: LiteLLM allows a user to modify their own user_role via the /user/update endpoint](https://portal.chinng-lab-srv.dev/security/library/security-20260714-af08b2.md): LiteLLM allows a user to modify their own user_role via the /user/update endpoint
- [CVE-2026-47101: LiteLLM allows an authenticated internal_user to create API keys with access to routes that their role does not permit](https://portal.chinng-lab-srv.dev/security/library/security-20260714-3ea518.md): LiteLLM allows an authenticated internal_user to create API keys with access to routes that their role does not permit
- [DEBIAN-CVE-2026-45447 — openssl](https://portal.chinng-lab-srv.dev/security/os/security-20260705-03d023.md): Issue summary: A specially crafted PKCS#7 or S/MIME signed message could trigger a use-after-free during PKCS#7 signature verification. Impact summary: A use-after-free may result in process crashes,…
- [CVE-2026-47102: LiteLLM allows a user to modify their own user_role via the /user/update endpoint](https://portal.chinng-lab-srv.dev/security/library/security-20260711-30590f.md): LiteLLM allows a user to modify their own user_role via the /user/update endpoint
- [CVE-2026-47101: LiteLLM allows an authenticated internal_user to create API keys with access to routes that their role does not permit](https://portal.chinng-lab-srv.dev/security/library/security-20260711-9ab91d.md): LiteLLM allows an authenticated internal_user to create API keys with access to routes that their role does not permit
- [CVE-2026-42215 — gitpython](https://portal.chinng-lab-srv.dev/security/library/security-20260714-a28fde.md): GitPython is a python library used to interact with Git repositories. From version 3.1.30 to before version 3.1.47, GitPython blocks dangerous Git options such as --upload-pack and --receive-pack by…
- [CVE-2026-42215: GitPython has Command Injection via Git options bypass](https://portal.chinng-lab-srv.dev/security/library/security-20260711-603762.md): GitPython has Command Injection via Git options bypass
